CrawlJobs Logo

Data Protection Operations Lead

airbnb.com Logo

Airbnb

Location Icon

Location:
Canada

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

101000.00 - 126000.00 CAD / Year

Job Description:

As a key member of our team, you’ll drive operational excellence, foster innovation, and champion security and productivity. You’ll play a pivotal role in designing and maintaining provisioning frameworks, collaborating with engineering partners to optimize permission models and tooling, and balancing speed with robust security across all processes. Your expertise will be essential in leading cross-functional Customer Support initiatives, securing alignment, and building strategic partnerships with teams like InfoSec, Partner Management, Legal, and Privacy to advance our mission. Through your work with stakeholders, you will: Develop and execute improvement roadmaps; Manage projects for implementing new security and privacy controls; Lead process enhancements and optimize access controls; Define audit and reporting mechanisms for both internal and vendor teams; Deliver best-in-class privacy and data protection for Operations. You’ll be joining a newly formed team with the rare opportunity to shape its culture and direction—bringing vision, leadership, and an entrepreneurial spirit as our team grows.

Job Responsibility:

  • Governance & Reporting: Measure, report, and govern privileged access controls to ensure compliance
  • Requirements & Implementation: Document and translate PAM (Privileged Access Management) requirements for technology partners, supporting efficient, modern, and sustainable solutions
  • Stakeholder Collaboration: Work cross-functionally to develop and iterate on PAM requirements across Process, Data, and Technology domains
  • Policy & Standards: Partner with the policy governance team to socialize and publish updates to the PAM Standard
  • Authentication & Security: Apply your mastery of authentication platforms (Active Directory, LDAP, Kerberos, Radius) and PAM principles (JIT provisioning) to make recommendations to policy and provisioning processes and technology teams
  • Regulatory Compliance: Ensure alignment with industry regulations and standards (NIST, ISO/IEC, FFIEC), particularly within financial services
  • Risk Management: Proactively identify, assess, and mitigate PAM risks, driving continuous improvement and accountability
  • Stakeholder Engagement: Report on existing and emerging PAM/information security risks to senior leadership with transparency and clarity
  • Quality Assurance: Design and execute thorough test strategies for privileged access processes, collaborate on defect resolution, and recommend improvements for usability, resilience, and security
  • Documentation: Maintain clear, comprehensive records of policies, approval processes, and test outcomes
  • Industry Engagement: Stay up-to-date with emerging trends and best practices in privileged access management
  • Access Management policies: Define and maintain access management policies for different user personas (admin, developer, user, viewer)
  • Leadership: Coach and train team members, ensuring accurate and efficient Human in the Loop processes
  • Access lifecycle: Oversee the full lifecycle of access (create, edit, delete, view, hide, etc.). Build and refine abstractions to inform access decisions, considering: User roles/personas
  • Tenant or organizational affiliation
  • Privileges assigned via specific permissions or group memberships

Requirements:

  • 8+ years of hands-on experience with Access and Privileged Access Management (PAM) operations in a technology-driven environment
  • Demonstrated experience in PAM operational tasks, including safe creation and management, privileged account onboarding, policy development, and least-privilege access model implementation
  • Solid background in identity and access management (IAM) principles and industry best practices
  • Experience with operationalizing Just-In-Time (JIT) privilege models, role-based access controls (RBAC), and enforcing Segregation of Duties (SoD)
  • Working knowledge of authentication protocols (e.g., SAML, OAuth, OpenID Connect, Active Directory, LDAP, Kerberos)
  • Familiarity with cloud-based privileged access management, including the classification and management of non-human identities (service accounts, API keys, etc.)
  • Strong understanding of security standards and regulatory frameworks (NIST, ISO/IEC, FFIEC) relevant to access management
  • Strong SQL abilities, including querying and dashboard creation
  • Clear, concise communication skills, with a proven ability to collaborate across engineering, security, product, and operational teams without a technical background to drive alignment and best-in-class solutions
  • Experience in documenting policies, procedures, and reporting on PAM-related risk and compliance metrics
  • Demonstrated ownership and accountability for continuous improvement in PAM controls and risk management
  • Proactive in identifying and mitigating security risks related to privileged access
  • Comfortable working in a fast-paced environment and contributing to cross-functional or global initiatives
  • Demonstrated ability to build and coach teams
  • Familiarity with access management challenges specific to cloud-native environments (AWS, GCP, Azure)
  • Involvement in developing or maintaining Privileged Access Management strategies that address both human and non-human identities, including business users, developers, and service accounts
What we offer:
  • bonus
  • equity
  • benefits
  • Employee Travel Credits

Additional Information:

Job Posted:
March 21, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Data Protection Operations Lead

Data Engineering & Analytics Lead

Premium Health is seeking a highly skilled, hands-on Data Engineering & Analytic...
Location
Location
United States , Brooklyn
Salary
Salary:
Not provided
premiumhealth.org Logo
Premium Health
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Engineering, or a related field. Master's degree preferred
  • Proven track record and progressively responsible experience in data engineering, data architecture, or related technical roles
  • healthcare experience preferred
  • Strong knowledge of data engineering principles, data integration, ETL processes, and semantic mapping techniques and best practices
  • Experience implementing data quality management processes, data governance frameworks, cataloging, and master data management concepts
  • Familiarity with healthcare data standards (e.g., HL7, FHIR, etc), health information management principles, and regulatory requirements (e.g., HIPAA)
  • Understanding of healthcare data, including clinical, operational, and financial data models, preferred
  • Advanced proficiency in SQL, data modeling, database design, optimization, and performance tuning
  • Experience designing and integrating data from disparate systems into harmonized data models or semantic layers
  • Hands-on experience with modern cloud-based data platforms (e.g Azure, AWS, GCP)
Job Responsibility
Job Responsibility
  • Collaborate with the CDIO and Director of Technology to define a clear data vision aligned with the organization's goals and execute the enterprise data roadmap
  • Serve as a thought leader for data engineering and analytics, guiding the evolution of our data ecosystem and championing data-driven decision-making across the organization
  • Build and mentor a small data team, providing technical direction and performance feedback, fostering best practices and continuous learning, while remaining a hands-on implementor
  • Define and implement best practices, standards, and processes for data engineering, analytics, and data management across the organization
  • Design, implement, and maintain a scalable, reliable, and high-performing modern data infrastructure, aligned with the organizational needs and industry best practices
  • Architect and maintain data lake/lakehouse, warehouse, and related platform components to support analytics, reporting, and operational use cases
  • Establish and enforce data architecture standards, governance models, naming conventions ,and documentation
  • Develop, optimize, and maintain scalable ETL/ELT pipelines and data workflows to collect, transform, normalize, and integrate data from diverse systems
  • Implement robust data quality processes, validation, monitoring, and error-handling frameworks
  • Ensure data is accurate, timely, secure, and ready for self-service analytics and downstream applications
What we offer
What we offer
  • Paid Time Off, Medical, Dental and Vision plans, Retirement plans
  • Public Service Loan Forgiveness (PSLF)
  • Fulltime
Read More
Arrow Right

Technology Services Engineer – Data Protection & Disaster Recovery

Immediate need for a Data Protection & Disaster Recovery Technical Services Engi...
Location
Location
United States , Alpharetta, Georgia
Salary
Salary:
Not provided
tier4group.com Logo
Tier4 Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2+ years in an MSP setting focused on backup/DR and Windows server environments
  • Deep Veeam proficiency
  • Solid grounding in Windows Server/AD, virtualization (preferably Hyper-V, working knowledge of VMware), storage (SMB/NFS, iSCSI), networking basics, and change control
  • PowerShell and basic API/JSON skills to automate deployments, checks, and reports
  • Security & compliance mindset: RBAC/least privilege, MFA, encryption in transit/at rest, audit artifacts for SOC 2/HIPAA
  • Excellent documentation and incident communications
  • willing to support maintenance windows/on-call
Job Responsibility
Job Responsibility
  • Own backup, restore, and resiliency outcomes for all MSP clients
  • act as the primary technical liaison for backup/DR platforms and service delivery
  • Veeam platform ownership: design, configure, and maintain Veeam Backup & Replication (SOBR, backup copy, replication, Instant Recovery, SureBackup labs)
  • manage repositories, retention, encryption, and job health
  • Immutable off-site copies: build and operate (bucket policies, retention/immutability, lifecycle/usage controls) as the off-site tier
  • Monitoring & compliance reporting: implement and tune end-to-end success/failure monitoring, alerting/escalation, daily health checks, and compliance evidence packs
  • 3-2-1 architectures: design and run three-copy / two-media / one off-site strategies using NAS appliances (QNAP/Synology) for local copy and off-site
  • document RPO/RTO per workload
  • Recovery testing & documentation: execute regular restore drills (file/VM/app-item, Instant Recovery, SureBackup verification), record results, and maintain DR runbooks with clear owners and contact trees
  • Incident response & escalation: lead backup/restore and DR events (containment, comms, status cadence, executive updates), perform RCA, and drive corrective and preventive actions
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits (medical, dental, vision, life, disability, 401(k) match)
  • robust PTO
  • Fulltime
Read More
Arrow Right

Privacy Operations Specialist

Privacy Operations Specialist to take ownership of the design and execution of s...
Location
Location
Spain , Madrid
Salary
Salary:
Not provided
https://feverup.com/fe Logo
Fever
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Detail-oriented with a problem-solving mindset
  • 4+ years of experience in operations, compliance, data protection or program/project management, ideally within entertainment, tech, marketplaces, digital platforms or fast-growing industries
  • Strong organisational, analytical and project management skills
  • Comfortable with tools and systems to drive operations
  • Ability to create structure, documentation and reporting compliance programs
  • Quick learner with the ability to adapt transferable skills to the privacy domain
  • Familiarity with global privacy frameworks (e.g., GDPR, CCPA, PIPEDA, etc.) is a plus
  • Experience with compliance frameworks (ISO 27001 / 27701) or supporting evidence collection for audits is a bonus
Job Responsibility
Job Responsibility
  • Drive day-to-day privacy operations, leading the execution of privacy processes
  • Manage and streamline the end-to-end process of handling data subject rights (DSR/DSAR) requests
  • Administer and optimize privacy management tools and platforms
  • Collaborate to respond to privacy-related inquiries, vendor assessments and RFPs regarding privacy compliance
  • Assist in incident response by documenting privacy-related events and coordinating investigations
  • Maintain and develop internal procedures to improve our Records of Processing Activities (ROPA)
  • Monitor global privacy regulatory changes and support operational rollout of new requirements
  • Help implement and monitor adherence to data retention schedules across teams
  • Collaborate with Marketing, Product, and Data teams to embed privacy by design/default into projects
  • Build and develop privacy-compliance dashboards and metrics
What we offer
What we offer
  • Attractive compensation package consisting of base salary
  • 40% discount on all Fever events and experiences
  • Work in a location in the heart of the city, with possible travel across our markets
  • Home office friendly
  • Health insurance
  • Flexible remuneration with a 100% tax exemption through Cobee
  • Gympass membership
  • English and Spanish lessons
  • Possibility to receive in advance part of your salary by Payflow
  • Free snacks, drinks and fruit at the office
  • Fulltime
Read More
Arrow Right

Security Manager

A Security Manager role in Provo, United States, involving key responsibilities ...
Location
Location
United States , Provo
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strategically implement the security program
  • Oversee enterprise risk management
  • Facilitate risk remediation
  • Champion security governance
  • Direct IAM operations
  • Advance data protection
  • Coordinate security operations
  • Lead vulnerability and patch management
  • Strengthen third-party risk governance
  • Administer BC/DR initiatives
Job Responsibility
Job Responsibility
  • Strategically implement the security program
  • Oversee enterprise risk management
  • Facilitate risk remediation
  • Champion security governance
  • Direct IAM operations
  • Advance data protection
  • Coordinate security operations
  • Lead vulnerability and patch management
  • Strengthen third-party risk governance
  • Administer BC/DR initiatives
What we offer
What we offer
  • Medical insurance
  • Vision insurance
  • Dental insurance
  • Life and disability insurance
  • Access to 401(k) plan
  • Free online training
  • Fulltime
Read More
Arrow Right
New

Cybersecurity & Access Management – Senior Specialist

Lead the design, implementation, and continuous strengthening of cybersecurity p...
Location
Location
Salary
Salary:
Not provided
hiremoters.ai Logo
HiRemoters
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in cybersecurity, information security, access governance, or IT security architecture roles
  • 8 years experience in cybersecurity, information security, access governance, or IT security architecture roles
  • Strong expertise in cybersecurity frameworks and standards (ISO 27001, NIST, CIS Controls, or equivalent)
  • Hands-on experience with identity and access management systems (Azure Active Directory, role-based access control models)
  • Experience securing cloud environments (Microsoft Azure security tools, security center, identity protection)
  • Knowledge of data protection technologies including encryption, secure data storage, and access monitoring
  • Experience with security monitoring tools, vulnerability management, and risk assessment methodologies
  • Understanding of secure architecture principles for CRM, ERP, and data platforms
  • Familiarity with API security, authentication protocols, and integration security controls
Job Responsibility
Job Responsibility
  • Design, implement, and manage cybersecurity framework across cloud platforms, enterprise systems, and data environments
  • Establish and maintain access governance policies, identity management standards, and role-based access controls across CRM, ERP, and data platforms
  • Continuously monitor and improve the security posture of digital ecosystem, including infrastructure, integrations, and user access patterns
  • Support secure onboarding of new systems, platforms, and integrations by embedding security principles into implementation processes
  • Lead cybersecurity risk assessments and vulnerability mitigation initiatives
  • Define and enforce cybersecurity governance standards across AGF’s digital ecosystem
  • Establish access governance frameworks, including identity lifecycle management and least-privilege principles
  • Contribute to enterprise governance decisions related to data protection, system access, and secure architecture
  • Support policy development related to information security, data protection, and secure systems usage
  • Serve as the technical lead for data protection compliance, including PDP-aligned security practices and access controls
What we offer
What we offer
  • Flexible and Remote Working
  • Career Growth
  • Performance Recognition
  • Health and Fitness Benefits
  • Extra Paid Annual Leave
  • Special Birthday Perk
  • Fulltime
Read More
Arrow Right

IT Operations Manager

In the departments of the "Supporting Functions" you may not come into direct co...
Location
Location
Germany , Berlin
Salary
Salary:
Not provided
asml.com Logo
ASML
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in Computer Science, Business Informatics, or a comparable qualification
  • Several years of professional experience in IT Operations, ideally in a leadership role
  • Solid expertise in data center infrastructures (servers, storage, networking, security, cloud technologies)
  • Experienced in installing, configuring, and analyzing IT systems
  • Strong understanding of data protection processes and GDPR compliance
  • Confident and fluent communication in both German and English
Job Responsibility
Job Responsibility
  • Lead and develop your team with a respectful and inclusive leadership style
  • Operate, maintain and optimize our IT infrastructure on an ongoing basis
  • Ensure the availability of networks, server environments, and data centers
  • Monitor security processes, including firewalls and user authorization
  • Oversee installations, upgrades and configurations of hardware and software
  • Evaluate system performance and implement improvement measures
  • Ensure data protection in accordance with GDPR and internal policies
  • Manage the budget for IT infrastructure systems
  • Handle contracts and licenses and coordinate external service providers
  • Collaborate closely with global IT teams to ensure alignment with ASML’s worldwide standards, strategies and infrastructure initiatives
What we offer
What we offer
  • Remuneration according to company collective agreement (with IG Metall) including 13th monthly salary and variable remuneration components
  • Collective working time: 35 hours/week
  • Flexible arrangement of your daily working hours (depending on the work area)
  • 30 days of vacation
  • Reimbursement of moving expenses for you and your family (starting from 100 km distance)
  • Specific advanced training and development opportunities
  • Access to organized childcare and vacation care
  • Health and sports offers (e.g. subsidy for sports activities, health days, company doctor, free vaccinations, etc.)
  • Travel allowance for BVG company ticket or bicycle
  • Fulltime
Read More
Arrow Right

Data Privacy Specialist – Marketing

The Data Privacy Specialist in Marketing will oversee the implementation of data...
Location
Location
South Africa , Johannesburg
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree
  • +5 years’ experience in Data Privacy or related fields
  • Experience in implementing Data Privacy programs and controls in Marketing functions in multinational organizations
  • Understanding of Marketing processes and frameworks
  • Relevant degree and/or Data Privacy certifications and qualifications (e.g. CIPP/E/CIPM/AIGP)
  • Experience in advising on complex data protection matters with practical advice
  • Experience in working with or advising large, multinational organizations
  • Experience in working on compliance projects
  • Deep knowledge of global data protection laws and regulations
  • Demonstrates accuracy and thoroughness and high levels of attention to detail
Job Responsibility
Job Responsibility
  • Implement NTT DATA Inc.’s Data Privacy policies, processes, and standards within the Marketing function
  • Lead and support Data Privacy strategic projects and initiatives across global Marketing operations
  • Support the integration of global data protection requirements into Marketing processes, systems, and transformation initiatives
  • Contribute to and maintain the Record of Processing Activities (ROPA) for Marketing
  • Project manage the Data Privacy requirements of new Marketing transformation projects, digital tools, and initiatives
  • Support the implementation of Marketing centralization and integration initiatives
  • Ensure data migration, consolidation and integration activities involving personal data are conducted in compliance with applicable data protection regulations and NTT DATA Inc’s Data Privacy standards
  • Conduct or support Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs), and Transfer Impact Assessments (TIAs)
  • Identify, document, and assess Data Privacy risks within Marketing and develop strategies to manage or mitigate them
  • Coordinate and support responses to Data Subject Requests (DSRs) related to Marketing data
  • Fulltime
Read More
Arrow Right

Senior Security Engineer, Privacy

As a Senior Security Engineer, Privacy, you will serve as a trusted advisor at t...
Location
Location
Canada; England; France; Germany; Italy; Portugal; Spain; United States
Salary
Salary:
88000.00 - 110000.00 EUR / Year
docker.com Logo
Docker
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6–8 years of experience in information technology, security engineering, governance, risk and compliance, privacy engineering, or closely related roles
  • Proven experience designing and implementing GRC programs with a strong emphasis on automation, engineering, and scalable processes
  • Hands-on experience implementing or operating privacy programs aligned with GDPR and ISO/IEC 27701, including privacy-by-design and privacy-by-default principles
  • Strong understanding of privacy engineering concepts such as data minimization, purpose limitation, data lifecycle management, and technical data protection controls
  • Proficiency in one or more programming or scripting languages such as Python or Golang, with experience building automation for compliance and privacy workflows
  • Experience working with APIs, webhooks, and integrating GRC, privacy, and security tooling
  • Hands-on experience with public cloud environments (AWS, Azure, or GCP), including applying privacy and data protection controls across backup systems, data lakes, and distributed cloud storage services
  • Experience integrating security and compliance requirements into SDLC and CI/CD pipelines using DevSecOps practices
  • Solid understanding of security frameworks and regulatory standards such as ISO 27xxx, SOC 2, GDPR, and NIST, and how they apply to SaaS environments
  • Knowledge of information security risk management and common security technologies (e.g., SIEM, vulnerability management, data loss prevention, endpoint protection)
Job Responsibility
Job Responsibility
  • Embed privacy-by-design principles into Docker products, services, and internal platforms, aligned with ISO/IEC 27001, ISO/IEC 27701, SOC 2, and global privacy regulations
  • Partner closely with Docker engineering and product teams to integrate privacy requirements into architecture decisions, SDLC processes, and CI/CD pipelines
  • Design, develop, and maintain automated GRC and privacy workflows to support compliance monitoring, control testing, DPIAs, risk assessments, reporting, and audit readiness
  • Implement and customize GRC and privacy tooling using APIs, scripting, and automation to streamline evidence collection, control validation, and compliance operations
  • Lead and automate data discovery, classification, and data mapping across Docker systems to maintain accurate Records of Processing Activities (RoPA) and support data lifecycle governance
  • Conduct and operationalize security risk assessments and Data Protection Impact Assessments (DPIAs), integrating findings into Docker’s risk register and remediation tracking
  • Define, implement, and validate data protection and data lifecycle controls, including data minimization, retention, deletion, and access controls
  • Build and maintain dashboards and security/privacy metrics to provide real-time visibility into risk, compliance posture, and program effectiveness
  • Support internal and external audits by providing high-quality, automated evidence and serving as a subject matter expert for security and privacy controls
  • Draft, maintain, and map security and privacy policies, standards, and procedures to relevant regulatory and industry frameworks
What we offer
What we offer
  • Freedom & flexibility
  • fit your work around your life
  • Designated quarterly Whaleness Days plus end of year Whaleness break
  • Home office setup
  • we want you comfortable while you work
  • 16 weeks of paid Parental leave
  • Technology stipend equivalent to $100 net/month
  • PTO plan that encourages you to take time to do the things you enjoy
  • Training stipend for conferences, courses and classes
  • Equity
  • Fulltime
Read More
Arrow Right